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IN THE CLAIMS : 

1 . (Currently Amended) A method of associating data with users involving associations between 
user identifying information and data, characterized in that comprising: 

concealing a user identity using concealing data is used to conceal a user id e ntity 
in the user identifying information, 

wherein the concealing data remains fixed for reissued associations, 

such that it is possible to check for a given user identity whether the association 

applies to it. 

2. (original) The method according to claim 1, wherein the user identity is concealed using a 
hash function. 

3. (original) The method according to claim 1, wherein the user identity is concealed using 
encryption. 

4. (original) The method according to claim 1, wherein the concealing data comprises a random 
value. 

5. (original) The method according to claim 1, wherein the associations are publicly available. 

6. (original) The method according to claim 1, further comprising the step of providing an 
association. 

7. (original) The method according to claim 1, further comprising 

the step of receiving a request for an association, and 
the step of providing the association. 

8. (original) The method according to claim 6, further comprising the step of signing the 
provided generated association. 
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9. (currently amended) The method according to claim 7, wherein the request includes the user 
identifying information in which the user identity is concealed (step 32) using concealing data. 

10. (original) Method according to claim 1, wherein the concealing data is encrypted by a secret 
user key. 

11. (Cancelled) 

12. (original) Method according to claim 1, wherein the association is a digital certificate. 

13. (original) Method according to claim 12, wherein the digital certificate is an SPKI 
authorization certificate. 

14. (original) Method according to claim 12, wherein the association includes the right to access 
purchased digital content. 

15. (original) Method according to claim 1, wherein the association comprises a content 
identifier. 

16. (original) Method according to claim 1, wherein the association comprises a rights attributes 
data field. 

17. (original) Method according to claim 1, wherein the association includes an index indicating 
the right user identifying information associated with the user. 

18. (currently amended) Method according to claim 1, further comprising the step of sending a 
request in relation to said data including the concealed user identifying information (step 32) . 

19. (original) Method according to claim 18, wherein the request includes the concealing data in 
order to enable revealing of the user identifying information. 
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20. (original) Method according to claim 18, wherein the request further includes a secret 
security identifier. 

21 . (original) Method according to claim 18, further including the step of encrypting the 
concealing data by using a secret domain key, such that the concealing data is encrypted in at 
least the request. 

22. (Currently Amended) Method of giving a user access to information in relation to an 
association between a user and data including the steps of: 

receiving from a user a request concerning said data using user identifying 
information related to the user, (stops 4 2; 50; 60; 98; 81), 

retrieving the association including user identifying information that has been 
concealed using concealing data, wherein the concealing data remains fixed for reissued 
associations (stops -13; 53; 77; 85; 99) , 

checking the concealed user identifying information in the association, (steps 44 ; - 
51; 78; 90; 101), and 

providing the user with information related to the data ,-(stops 4 6; 56; 80; 92; 108) 
based on a correspondence between the concealed user identifying information in the association 
and user identifying information at least linked to the user. 

23. (currently amended) Method according to claim 22, wherein the step of providing the user 
with information comprises providing the user access to content corresponding to said data, 
(steps 16; 56; 8 0; 92; 108) . 

24. (currently amended) Method according to claim 22, further including the step of performing 
authentication of the user (stop s 10; 18; 58; 82; 91) . 

25. (original) Method according to claim 22, wherein the user identifying information received 
from the user is the same as the user identifying information in the association and the step of 
providing is based on a correspondence between the concealed user identifying information and 
the user identifying information received from the user. 
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26. (currently amended) Method according to claim 22, wherein the user identifying information 
received from the user is different than the user identifying information in the association and 
further including the step of: 

comparing the user identifying information of the user against a user domain 
certificate including user identifying information related to all users in a domain, (steps 52; 72), 

wherein the step of checking concealed user identifying information in the 
association with user identifying information (st e ps 5A; 78) is performed on user identifying 
information in the domain certificate, and 

the step of providing (steps 56; 80) is performed based on a correspondence 
between the concealed user identifying information in the association and any user identifying 
information in the domain certificate. 

27. (original) Method according to claim 26, wherein the domain certificate includes concealed 
user identifying information of all the users in the domain and an encryption of a concatenation 
of all user identifying information in the domain using a secret domain key. 

28. (currently amended) Method according to claim 27, further including the steps of sending the 
encrypted concatenation of all user identifying information to the user (step 74) and receiving 
identifying information about all users in the domain from said user (st e p 76) . 

29. (Currently Amended) Devic e (112) for hiding the identity of a user in an association b e tween 
said user and data, arrang e d to A computer readable storage medium including a set of 
instructions executable by a processor, the set of instructions being operable to : 

conceal user identifying information in an association between a user and data 
using concealing data for provision of the concealed user identifying information in the 
association , wherein the concealing data remains fixed for reissued associations . 

30. (Currently Amended) Device (20, 22, 21) for giving a us e r acce ss to information in r e lation 
to an association between a user and data^ arranged to A computer readable storage medium 
including a set of instructions executable by a processor, the set of instructions being operable to : 
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receive a request from a user to access information in relation to an association 
between the user and data, conc e rning said data including user identifying information relating to 
the user, 

retrieve [[an]] the association between the data and [[a]] the user including user 

identifying information, which has been concealed using concealing data, wherein the concealing 

data remains fixed for reissued associations, 

check the concealed user identifying information in the association, and 
provide the user with information related to the data based on a correspondence 

between the concealed user identifying information in the association and user identifying 

information at least linked to the user. 

3 1 . (Currently Amended) Device (20, 22, 24) for obtaining information in relation to an 
association b e tween a user and said data, arranged to A computer readable storage medium 
including a set of instructions executable by a processor, the set of instructions being operable to : 

receive user identifying information related to a user , the user identifying 
information being related to an association between the user and data, wherein the user 
identifying information is that has been concealed using concealing data, and 

send a request concerning data including the concealed user identifying 
information, wherein the concealing data remains fixed for reissued associations, 

so that [[an]] the_association between the user and said data comprising the 
concealed user identifying information can be received. 

32. (Currently Amended) Device (26) for providing information in relation to data while 
concealing th e identity of at least one user in r e lation to an association b e tween the user and said 
data, arranged to A computer readable storage medium including a set of instructions executable 
by a processor, the set of instructions being operable to : 

receive a request concerning [[said]] data including [[the]] user identifying 
information which has been concealed using concealing data, the data being included in an 
association between the user and the data, wherein the concealing data remains fixed for reissued 
associations, and 
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provide [[an]] the_association between the user and said data comprising the 
concealed user identifying information. 

33-36. (Cancelled) 
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